-Advertisement-

The emails included trustworthy AI images, designed to install malware. Once this malware is installed on a device, hackers steal all data from it. One such email came from an address ending in mli.kr, which was designed to deceive recipients. This type of email address is used by the South Korean military. The attached files contained compressed files and shortcut links (.lnk) that launched obfuscated scripts. These scripts then unpacked batch files capable of stealing information from the device.






